POST /api/v1/docks/{dockId}/commands
- Production:
POST https://outpost.earthity.com/api/v1/docks/{dockId}/commands - Sandbox:
POST https://outpost.earthity.com/api/sandbox/v1/docks/{dockId}/commands - Gate:
credentialed - Read-only:
false - Destructive:
true - Idempotent:
true
Parameters
Request body
Example
Responses
202 - Command queued.
400 - command missing or not one of the closed enum values, or Idempotency-Key missing.
Body: application/problem+json - see Problem anatomy.
401 - Not signed in.
Body: application/problem+json - see Problem anatomy.
403 - The caller has a relationship with this dock but may not issue THIS command — an API key whose verb scope excludes it, or a demo session. A caller with no relationship to the dock gets 404 instead, so this response never reveals a dock id the caller could not already see. A viewer of the owning organization gets 404 as well on a private or shared dock, because viewers do not command there; on an open-network dock any signed-in member of any organization may command, viewers included.
Body: application/problem+json - see Problem anatomy.
404 - Unknown dock, or a dock this credential has no relationship with — the two are deliberately indistinguishable. A 403 here would confirm that a dock id belonging to another tenant is real, which turns this route into an enumeration oracle over other people’s hardware.
Body: application/problem+json - see Problem anatomy.
409 - The dock already has a command in flight. Reusing an Idempotency-Key for a different command is NOT an error here - it issues a new command - so idempotency_key_reused stays published only because the downstream executor can still raise it; neither Outpost server does.
Body: application/problem+json - see Problem anatomy.
429 - Over one of four limits. Two are counted on the command ledger and send no Retry-After: 6 commands per dock per minute (a physical cycle time, not a quota) and 30 commands per issuing organization per minute. A single API key may issue at most 15 commands a minute, half its organization’s allowance, so one misbehaving key cannot lock the rest of the organization out; that refusal sends Retry-After. The per-IP limit on mutating requests, 30 per 10 seconds, sends it too. Back off and retry.
Body: application/problem+json - see Problem anatomy.
503 - The command channel is fail-closed unavailable.
Body: application/problem+json - see Problem anatomy.